CLI Command Reference Guide
Copyright© 2018, Juniper Networks, Inc.
97
server
set proxy (collector mode)
Table 5-14 server
Description
Enters the server configuration mode.
See Also: collector
Product(s) CLI
All-in-One | Collector | Core/CM | Mac Mini Mac OS X
Mode(s)
Basic
Syntax
server
Sub-Commands
exit; help; history; ifrestart; ping; reboot; restore; set
(server mode); show (server mode)
Example
The following example enters server configuration mode:
hostname #
server
hostname (server) # ?
Table 5-15 set proxy
Description
Sets an Inside or Outside data path proxy from collector mode.
Deploy Traffic Collectors in locations where the monitoring interface is (1) placed
“outside” between the proxy and the egress network for customer environments in
which the proxy supports XFF (X-Forwarded-For), or (2) [the more typical
deployment scenario], the Collector is placed between the proxy and the internal
network using FQDN (if available) to identify the threat source for all types of
incidents (“inside” proxy). When configured, the Juniper ATP Appliance Traffic
Collector will monitor all traffic and correctly identify source and destination hosts
for each link in the kill chain wherever the data allows for it.
Note that if the “X-Forwarded-For” header is provided in the HTTP request,
detection will identify threat targets when deployed outside of the proxy
(customers can choose to disable the XFF feature in the proxy setting, if desired).
See Also: set (server mode); set (diagnosis mode)
NOTE
The mitigation IP address of a CNC server is not be available for
Inside proxy deployments. When a Juniper ATP Appliance is deployed behind
a proxy, the Mitigation-> Firewall page in the Juniper ATP Appliance Central
Manager Web UI (which typically displays the CNC server IP address to
mitigate) will be empty. The destination IP address of any callback is made to
the proxy server ip address, so it is not relevant to display the proxy server IP
address on the Mitigation->Firewall page.
Product(s) CLI
All-in-One | Collector
Mode(s)
collector
Syntax
set proxy inside {add <proxy IP address> <proxy port> |
remove <proxy IP address> <proxy port>
set proxy outside {add <proxy IP address> | remove <proxy
IP address>
Summary of Contents for Advanced Threat Prevention Appliance
Page 70: ...Juniper Advanced Threat Prevention Appliance 62 Copyright 2018 Juniper Networks Inc ...
Page 94: ...Juniper Advanced Threat Prevention Appliance 86 Copyright 2018 Juniper Networks Inc ...
Page 118: ...Juniper Advanced Threat Prevention Appliance 110 Copyright 2018 Juniper Networks Inc ...